Weekend Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

H12-721 Exam Dumps - Huawei Certified Network Professional HCNP Questions and Answers

Question # 24

Which part of the attack packet is matched by the blacklist to achieve attack prevention?

Options:

A.

source address

B.

destination address

C.

source port

D.

destination port

Buy Now
Question # 25

The ACK flood attack is defended by the load check. The principle is that the cleaning device checks the payload of the ACK packet. If the payloads are all consistent (if the payload content is all 1), the packet is discarded.

Options:

A.

TRUE

B.

FALSE

Buy Now
Question # 26

What are the load balancing algorithms supported by the USG firewall?

Options:

A.

source address hash algorithm

B.

simple polling algorithm (roundrobin)

C.

weighted rounding algorithm (weightff)

D.

ratio (Ratio)

Buy Now
Question # 27

Because the policy in the traffic limiting policy does not restrict the deny rule, you do not need to use the deny rule.

Options:

A.

TRUE

B.

FALSE

Buy Now
Question # 28

What is the correct statement about the binding of local users to VPN instances?

Options:

A.

local user can be bound to a VPN instance by using the local-user user-name vpn-instance vpn-instance-name command.

B.

By default, the binding between a local user and a VPN instance is implemented.

C.

. After a local user is bound to a VPN instance, the local user can manage the entire firewall.

D.

Local users cannot be bound to VPN instances.

Buy Now
Question # 29

What actions will be performed when the firewall hot standby sends the active/standby switchover?

Options:

A.

send free ARP

B.

Send proxy ARP

C.

VRRP backup group virtual address is unavailable

D.

related switch automatically updates the MAC table

Buy Now
Question # 30

In the IPSec active/standby link backup application scenario, gateway B uses IPSec tunneling technology and gateway A to establish an IPSec VPN.

Options:

A.

TRUE

B.

FALSE

Buy Now
Question # 31

When using the optical bypass interface, the Bypass link has two working modes, automatic mode and forced mode.

Options:

A.

TRUE

B.

FALSE

Buy Now
Question # 32

The network of an enterprise is as follows. At this time, server A cannot access the web service of server B. The administrator performs troubleshooting and finds that there is no problem in the routing mode of firewall A. The corresponding routing table has been established, but the firewall mode of firewall A is set. error. What is the method used by the administrator to troubleshoot the problem?

Options:

A.

layering method

B.

segmentation method

C.

replacement method

D.

block method

Buy Now
Question # 33

The network administrator of a company discards traffic that exceeds the throughput of the device. The USG discards the traffic that exceeds the device throughput. The USG discards the traffic that exceeds the device throughput. The following command can achieve this function?

Options:

A.

utm bypass enable

B.

undo utm bypass enable

C.

ips bypass enable

D.

undo ips bypass enable

Buy Now
Exam Code: H12-721
Exam Name: HCNP-Security-CISN (Huawei Certified Network Professional - Constructing Infrastructure of Security Network)
Last Update: Feb 23, 2025
Questions: 245
H12-721 pdf

H12-721 PDF

$25.5  $84.99
H12-721 Engine

H12-721 Testing Engine

$28.5  $94.99
H12-721 PDF + Engine

H12-721 PDF + Testing Engine

$40.5  $134.99